An issue was discovered in GitLab Community and Enterprise Edition 10.x (starting from 10.8) and 11.x before 11.6.10, 11.7.x before 11.7.6, and 11.8.x before 11.8.1. It has Incorrect Access Control, a different vulnerability than CVE-2019-9732.
{
"versions": [
{
"introduced": "10.8.0"
},
{
"last_affected": "10.8.7"
},
{
"introduced": "10.8.0"
},
{
"last_affected": "10.8.7"
},
{
"introduced": "11.0.0"
},
{
"fixed": "11.6.10"
},
{
"introduced": "11.0.0"
},
{
"fixed": "11.6.10"
},
{
"introduced": "11.8.0"
},
{
"fixed": "11.8.1"
},
{
"introduced": "11.8.0"
},
{
"fixed": "11.8.1"
}
]
}